root


Mode:

Legend:

Added
Modified
Copied or renamed
Rev Chgset Date Author Log Message
(edit) @26 [26] 12/26/06 09:23:18 miyagawa Don't make use of $& variable
(edit) @25 [25] 09/15/06 00:58:30 janine Tabs are bad.
(edit) @24 [24] 06/29/06 19:20:27 hachi Add hooks for exceptions
(edit) @23 [23] 04/07/06 05:53:58 btrott Fixed the number of tests; removed the CSS.pm prereq; added an …
(edit) @22 [22] 04/04/06 20:15:29 bradfitz make post to LiveJournal changelog
(edit) @21 [21] 02/28/06 03:10:05 bradfitz don't allow jscript and livescript URLs
(edit) @20 [20] 02/27/06 22:08:22 bradfitz [int: security] // in CSS negates all future …
(edit) @19 [19] 02/16/06 06:12:16 davidr Add tests for other CSS vulns reported that have been marked as resolved. …
(edit) @18 [18] 02/15/06 20:09:44 bradfitz [int: security] don't allow @charset …
(edit) @17 [17] 02/08/06 08:39:39 bradfitz don't kill the //foo in http://foo... bleh, whoops
(edit) @16 [16] 02/08/06 00:48:57 bradfitz deal with HTML …
(edit) @15 [15] 02/08/06 00:42:51 bradfitz more checks
(edit) @14 [14] 02/07/06 22:48:06 bradfitz don't allow /**/ or /*(newline)*/
(edit) @13 [13] 02/07/06 21:14:46 bradfitz deal with comments
(edit) @12 [12] 02/07/06 20:12:17 bradfitz don't allow start tags in CSS
(edit) @11 [11] 02/07/06 17:27:49 bradfitz don't allow backslash+hex anywhere. avoid us having to decode it, then …
(edit) @10 [10] 02/06/06 20:37:09 bradfitz typo
(edit) @9 [9] 02/06/06 20:26:08 bradfitz slap more stuff
(edit) @8 [8] 02/06/06 19:56:16 bradfitz adding browser test suite …
(edit) @7 [7] 02/02/06 08:47:54 bradfitz make this back into a stupid cleaner for now since CSS.pm didn't work. …
(edit) @6 [6] 01/31/06 19:13:38 bradfitz case insensitive property name matching
(edit) @5 [5] 01/31/06 08:43:26 bradfitz match url(' not url' also allow …
(edit) @4 [4] 01/30/06 21:39:15 bradfitz clean some more
(edit) @3 [3] 01/30/06 18:16:47 bradfitz add for testing
(edit) @2 [2] 01/30/06 18:12:49 bradfitz from the top of the file: # Note: this is a very early version of a CSS …
(add) @1 [1] 01/30/06 18:12:49 anonymous New repository initialized by cvs2svn.
Note: See TracRevisionLog for help on using the revision log.